IRonMAN: InterpRetable Incident Inspector Based ON Large-Scale Language Model and Association miNing
...In this work, we propose the first explainable LLM-based incident inspector. We combine a large-scale language embedding model with a frequent association algorithm to extract significant tokens, providing strong interpretability for incident similarity in feature space representation. Moreover, the contextual comprehension capabilities of the LLM ensure robustness against input variations. We demonstrate the practicality of our method in real-world incidents by applying it to our global visibility platform (200M events per day). The significant tokens generated by our model clearly identify the reasons why incidents are believed to stem from the same APT groups. Additionally, compare the results generated by our method to feedback from security analysts and thus provide different analytical perspectives for incident analysis...
By: Chung-Kuan Chen ckchen , Sian-Yao Huang , Cheng-Lin Yang clyang
Full Abstract and Presentation Materials: #ironman-interpretable-incident-inspector-based-on-large-scale-language-model-and-association-mining-33072
1 view
0
0
5 months ago 00:40:13 1
IRonMAN: InterpRetable Incident Inspector Based ON Large-Scale Language Model and Association miNing
6 years ago 02:02:09 1
Триатлон изнутри: О чём нужно знать любителю программа подготовки I LOVE RUNNING IronMan 🏋НАУКА БЫТЬ БОГАТЫМ и ЗДОРОВЫМ
6 years ago 01:51:33 1
Экипировка для триатлона и программа подготовки к Ironstar. Максим Журило в Лектории I LOVE RUNNING IronMan триатлон 🏋НАУКА БЫТЬ БОГАТЫМ и ЗДОРОВЫМ